Skip to content

CVE-2026-22860

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
February 26, 2026
Last Seen
February 26, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Ubuntu 25.10 and its LTS derivatives are affected by vulnerabilities in Rack, a Ruby webserver interface. CVE-2026-22860 allows for path traversal attacks that could leak sensitive information, while CVE-2026-25500 enables arbitrary code execution due to improper input sanitization. Both vulnerabili...

Public Exploits

Checking GitHub for proof-of-concept code…